Linux Netfilter / IP Tables Devel
[Prev Page][Next Page]
- Re: [PATCH 2/3] evaluate: allow to use string with binary operations, (continued)
- randconfig build error with next-20140113, in net/netfilter/nft_reject.c,
Jim Davis
- [PATCH nft] expression: fix output of verdict maps,
Pablo Neira Ayuso
- [libnftables PATCH] set: xml: data_type/data_len are optional, Arturo Borrero Gonzalez
- [PATCH nftables] netfilter: nf_tables: fix unmet dependencies in nf_tables_inet, Pablo Neira Ayuso
- nftables: improve build system,
Jan Engelhardt
- [PATCH] nftables: Drop hard coded install using root user owner and group.,
Kevin Fenzi
- nftables/libnftables packages for Fedora,
Kevin Fenzi
- [RFC nft PATCH] syntax: replace '=>' with '=:',
Arturo Borrero Gonzalez
- Fwd: Bug 883 - Uninitialized values in libnetfilter_log.c,
Ivan Homoliak
- [PATCH libnftables v4] Add support for ct set,
Kristian Evensen
- [PATCH libnftables] meta: Let user specify any combination of sreg/dreg,
Kristian Evensen
- [PATCH netfilter: nf_ct] Fix compilation warning if NF_CONNTRACK_MARK is not set,
Kristian Evensen
- [PATCH] netfilter updates for net-next,
Pablo Neira Ayuso
- [PATCH] netfilter: nf_tables: fix missing byteorder conversion in policy, Pablo Neira Ayuso
- [PATCH iptables-nftables] nft: fix inconsistent data type in NFT_EXPR_CMP_OP and NFT_EXPR_META_KEY, Pablo Neira Ayuso
- [PATCH nft] netlink: fix wrong type in attributes, Pablo Neira Ayuso
- [PATCH libnftables] expr: fix incorrect data type for several expression object fields, Pablo Neira Ayuso
- [libnftables PATCH next-3.14] expr: fix registers datatypes,
Arturo Borrero Gonzalez
- [PATCH 0/4] nftables: bug fixes and minor cleanups,
Patrick McHardy
- datatype: fix crash if wrong integer type is passed,
Patrick McHardy
- [PATCH 00/23] nf_tables updates for net-next,
Pablo Neira Ayuso
- [PATCH 05/23] netfilter: nf_tables: add "inet" table for IPv4/IPv6, Pablo Neira Ayuso
- [PATCH 18/23] netfilter: nf_tables: minor nf_chain_type cleanups, Pablo Neira Ayuso
- [PATCH 22/23] netfilter: nf_tables: rename nft_do_chain_pktinfo() to nft_do_chain(), Pablo Neira Ayuso
- [PATCH 23/23] netfilter: nf_tables: fix error path in the init functions, Pablo Neira Ayuso
- [PATCH 19/23] netfilter: nf_tables: perform flags validation before table allocation, Pablo Neira Ayuso
- [PATCH 14/23] netfilter: nf_tables: fix chain type module reference handling, Pablo Neira Ayuso
- [PATCH 16/23] netfilter: nf_tables: replay request after dropping locks to load chain type, Pablo Neira Ayuso
- [PATCH 15/23] netfilter: nf_tables: add missing module references to chain types, Pablo Neira Ayuso
- [PATCH 20/23] netfilter: nf_tables: take AF module reference when creating a table, Pablo Neira Ayuso
- [PATCH 21/23] netfilter: nf_tables: prohibit deletion of a table with existing sets, Pablo Neira Ayuso
- [PATCH 17/23] netfilter: nf_tables: constify chain type definitions and pointers, Pablo Neira Ayuso
- [PATCH 04/23] netfilter: nf_tables: add support for multi family tables, Pablo Neira Ayuso
- [PATCH 06/23] netfilter: nf_tables: add nfproto support to meta expression, Pablo Neira Ayuso
- [PATCH 12/23] netfilter: nf_tables: restore chain change atomicity, Pablo Neira Ayuso
- [PATCH 13/23] netfilter: nf_tables: fix check for table overflow, Pablo Neira Ayuso
- [PATCH 10/23] netfilter: nft_meta: fix lack of validation of the input register, Pablo Neira Ayuso
- [PATCH 09/23] netfilter: nft_ct: Add support to set the connmark, Pablo Neira Ayuso
- [PATCH 11/23] netfilter: nf_tables: split chain policy validation from actually setting it, Pablo Neira Ayuso
- [PATCH 07/23] netfilter: nft_meta: add l4proto support, Pablo Neira Ayuso
- [PATCH 08/23] netfilter: nft_ct: load both IPv4 and IPv6 conntrack modules for NFPROTO_INET, Pablo Neira Ayuso
- [PATCH 01/23] netfilter: nft_reject: fix compilation warning if NF_TABLES_IPV6 is disabled, Pablo Neira Ayuso
- [PATCH 03/23] netfilter: nf_tables: add hook ops to struct nft_pktinfo, Pablo Neira Ayuso
- [PATCH 02/23] netfilter: nf_tables: make chain types override the default AF functions, Pablo Neira Ayuso
- Re: [PATCH 00/23] nf_tables updates for net-next, David Miller
- [PATCH libnftables next-3.14 v2] src: fix compilation due to missing NFPROTO_INET definition, Pablo Neira Ayuso
- [PATCH libnftables next-3.14] src: fix compilation due to missing NFPROTO_INET definition, Pablo Neira Ayuso
- [PATCH nf_tables v2] netfilter: nf_tables: fix error path in the init functions, Pablo Neira Ayuso
- [PATCH nf_tables] netfilter: nf_tables: fix error path in the init functions, Pablo Neira Ayuso
- [PATCH nf_tables] netfilter: nft_meta: fix lack of validation of the input register, Pablo Neira Ayuso
- [PATCH 00/13] netfilter: nf_tables: bug fixes and minor cleanups,
Patrick McHardy
- [PATCH 01/13] netfilter: nf_tables: split chain policy validation from actually setting it, Patrick McHardy
- [PATCH 02/13] netfilter: nf_tables: restore chain change atomicity, Patrick McHardy
- [PATCH 03/13] netfilter: nf_tables: fix check for table overflow, Patrick McHardy
- [PATCH 04/13] netfilter: nf_tables: fix chain type module reference handling, Patrick McHardy
- [PATCH 05/13] netfilter: nf_tables: add missing module references to chain types, Patrick McHardy
- [PATCH 06/13] netfilter: nf_tables: replay request after dropping locks to load chain type, Patrick McHardy
- [PATCH 07/13] netfilter: nf_tables: constify chain type definitions and pointers, Patrick McHardy
- [PATCH 08/13] netfilter: nf_tables: minor nf_chain_type cleanups, Patrick McHardy
- [PATCH 09/13] netfilter: nf_tables: perform flags validation before table allocation, Patrick McHardy
- [PATCH 10/13] netfilter: nf_tables: take AF module reference when creating a table, Patrick McHardy
- [PATCH 11/13] netfilter: nf_tables: prohibit deletion of a table with existing sets, Patrick McHardy
- [PATCH 12/13] netfilter: nf_tables: unininline nft_trace_packet(), Patrick McHardy
- [PATCH 13/13] netfilter: nf_tables: rename nft_do_chain_pktinfo() to nft_do_chain(), Patrick McHardy
- Re: [PATCH 00/13] netfilter: nf_tables: bug fixes and minor cleanups, Pablo Neira Ayuso
- [libnftables PATCH 1/3] parsing: rework and generalize the build/parse system,
Arturo Borrero Gonzalez
- [PATCH RFC] nftables: fix surpression of "permission denied" errors,
Patrick McHardy
- [PATCH 00/12] nftables: generic protocol contexts, "inet" family,
Patrick McHardy
- [PATCH 01/12] expr: replace PAYLOAD_PROTOCOL_EXPR by generic flag, Patrick McHardy
- [PATCH 02/12] nftables: generic procotol contexts, Patrick McHardy
- [PATCH 03/12] expr: add protocol context update callback, Patrick McHardy
- [PATCH 05/12] proto: add debugging for protocol context updates, Patrick McHardy
- [PATCH 04/12] proto: add helper function to update protocol context, Patrick McHardy
- [PATCH 06/12] ct expr: protocol context updates and dynamic typing, Patrick McHardy
- [PATCH 08/12] nftables: add support for the "inet" family, Patrick McHardy
- [PATCH 07/12] include: resync nftables.h with kernel, Patrick McHardy
- [PATCH 11/12] meta: add nfproto support, Patrick McHardy
- [PATCH 12/12] meta: add l4proto support, Patrick McHardy
- [PATCH 10/12] proto: add support for meta templates, Patrick McHardy
- [PATCH 09/12] netlink_delinearize: remove implied meta expressions, Patrick McHardy
- [PATCH libnftables v2] Add support for ct set,
Kristian Evensen
- [PATCH libnftables] Improved error handling and minor clean-up,
Kristian Evensen
- Patches to xtables-addons xt_quota2,
Sam Liddicott
- [PATCH netfilter: nft v2] netfilter: nf_tables Add set op to nft_ct module,
Kristian Evensen
- [PATCH nftables] Add support for setting ct keys,
Kristian Evensen
- [PATCH libnftables] Add support for ct set,
Kristian Evensen
- [PATCH netfilter: nft] netfilter: nf_tables Add set op to nft_ct module,
Kristian Evensen
- [libnftables PATCH 0/6] parsing update,
Arturo Borrero Gonzalez
- [PATCH] netfilter: nf_conntrack: fix RCU race in nf_conntrack_find_get,
Andrey Vagin
- A conntrack, which is added via ctnetlink, can provoke a race condition,
Andrey Wagin
- [PATCH] netfilter: nftables: fix warning in nft_reject,
Eric Leblond
- [PATCH nftables] netfilter: nft_reject: fix compilation warning if NF_TABLES_IPV6 is disabled, Pablo Neira Ayuso
- ipset: hash_netnet4_data_equal typo commit status follow-up,
David Gervais
- [RFC PATCH 00/12] nftables: generic protocol contexts, "inet" family support,
Patrick McHardy
- [PATCH 01/12] expr: replace PAYLOAD_PROTOCOL_EXPR by generic flag, Patrick McHardy
- [PATCH 06/12] ct expr: protocol context updates and dynamic typing, Patrick McHardy
- [PATCH 02/12] nftables: generic procotol contexts, Patrick McHardy
- [PATCH 12/12] meta: add l4proto support, Patrick McHardy
- [PATCH 11/12] meta: add nfproto support, Patrick McHardy
- [PATCH 03/12] expr: add protocol context update callback, Patrick McHardy
- [PATCH 04/12] proto: add helper function to update protocol context, Patrick McHardy
- [PATCH 05/12] proto: add debugging for protocol context updates, Patrick McHardy
- [PATCH 10/12] proto: add support for meta templates, Patrick McHardy
- [PATCH 08/12] nftables: add support for the "inet" family, Patrick McHardy
- [PATCH 07/12] include: resync nftables.h with kernel, Patrick McHardy
- [PATCH 09/12] netlink_delinearize: remove implied meta expressions, Patrick McHardy
- [PATCH nftables] Add support for the meta connmark key, Kristian Evensen
- [PATCH libnftables] Add support for the connmark meta key, Kristian Evensen
- [PATCH netfilter: nft] Add the connmark meta_key,
Kristian Evensen
- [PATCH net-next] netfilter: nfnetlink_queue: fix compilation problem due missing header,
Pablo Neira Ayuso
- [PATCH] netfilter: nf_conntrack: release conntrack from rcu callback,
Andrey Vagin
- [PATCH 00/13] nftables updates for net-next,
Pablo Neira Ayuso
- [PATCH 05/13] netfilter: nf_tables: nft_meta module get/set ops, Pablo Neira Ayuso
- [PATCH 07/13] netfilter: select NFNETLINK when enabling NF_TABLES, Pablo Neira Ayuso
- [PATCH 13/13] netfilter: nf_tables: dump sets in all existing families, Pablo Neira Ayuso
- [PATCH 12/13] netfilter: nf_tables: remove unused variable in nf_tables_dump_set(), Pablo Neira Ayuso
- [PATCH 04/13] netfilter: nf_tables: Expose the table usage counter via netlink, Pablo Neira Ayuso
- [PATCH 01/13] netfilter: nf_tables: fix issue with verdict support, Pablo Neira Ayuso
- [PATCH 11/13] netfilter: nf_tables: fix type in parsing in nf_tables_set_alloc_name(), Pablo Neira Ayuso
- [PATCH 08/13] netfilter: REJECT: separate reusable code, Pablo Neira Ayuso
- [PATCH 10/13] netfilter: add help information to new nf_tables Kconfig options, Pablo Neira Ayuso
- [PATCH 09/13] netfilter: nft_reject: support for IPv6 and TCP reset, Pablo Neira Ayuso
- [PATCH 03/13] netfilter: nft: add queue module, Pablo Neira Ayuso
- [PATCH 06/13] netfilter: nf_tables: remove nft_meta_target, Pablo Neira Ayuso
- [PATCH 02/13] netfilter: xt_NFQUEUE: separate reusable code, Pablo Neira Ayuso
- Re: [PATCH 00/13] nftables updates for net-next, David Miller
- [PATCH nftables] Add support for connmark target, Kristian Evensen
- [PATCH libnftables] Add support for nft_connmark,
Kristian Evensen
- [PATCH netfilter: nft] add connmark module,
Kristian Evensen
- [PATCH v6] iptables: add support for l2tp match, James Chapman
- [PATCH v6] netfilter: introduce l2tp match extension,
James Chapman
- [PATCH nf-next] netfilter: nf_log: use %s format string for buffer,
Daniel Borkmann
- [PATCH nf] netfilter: nf_conntrack: fix skb_header_pointer API usages in DCCP,
Daniel Borkmann
- [libnftables PATCH v2] src: new error reporting approach for XML/JSON parsers,
Alvaro Neira
- [PATCH nft] src: set maximum length in constant sets, Pablo Neira Ayuso
- [PATCH libnftables] set: support new maximum and number of elements attributes, Pablo Neira Ayuso
- [PATCH 0/3 nftables RFC] set infrastructure updates,
Pablo Neira Ayuso
- [PATCH] extensions: libxt_set: Add missing hyphen to --bytes-eq synopsis in manpage,
Mart Frauenlob
- [net PATCH] netfilter: only warn once on wrong seqadj usage,
Jesper Dangaard Brouer
- [PATCH v5] iptables: add support for l2tp match, James Chapman
- [PATCH v5] netfilter: introduce l2tp match extension,
James Chapman
- [libnftables PATCH v2] parsing: add interface to parse from file,
Arturo Borrero Gonzalez
- [RFC PATCH 0/6] netfilter: nf_tables: add mixed IPv4/IPv6 table support,
Patrick McHardy
- How to get pid of packet sender from NFQUEUE?,
Mehran Kholdi
- How to test netfilter SYNPROXY target properly?,
Vincent Li
- [libnftables PATCH] parsing: add interface to parse from file,
Arturo Borrero Gonzalez
- [libnftables PATCH] tests: add table 'use' attr to testfiles,
Arturo Borrero Gonzalez
- [PATCH 0/2] ct_set: port CT target to nftables,
Eric Leblond
- [PATCH] netfilter: CT: improve error treatment,
Eric Leblond
- [PATCH RESEND] netfilter: remove unused variable,
Michal Nazarewicz
- [nft PATCH] src: add support for listing the entire ruleset,
Arturo Borrero Gonzalez
- [PATCH nf] netfilter: nf_nat: fix buffer overflow in IRC NAT helper,
Daniel Borkmann
- [PATCH nf-next] netfilter: fix type in parsing in nf_tables_set_alloc_name,
Daniel Borkmann
- [libnftables PATCH 1/2] src: rename the parameter tag to node_name in jansson function,
Alvaro Neira
- [PATCH net-next] netfilter: remove dead code,
Stephen Hemminger
- [PATCH net-next] ipset: remove unused code,
Stephen Hemminger
- [PATCH nf-next] netfilter: add help information to new nf_tables Kconfig options,
Pablo Neira Ayuso
- [PATCH] netfilter: Remove some backward-compat Kconfig symbols,
Ben Hutchings
- Re: ULOGD2 with MYSQL,
Sassy Natan
[PATCH nf-next v5 0/3] xtables socket classid matching,
Daniel Borkmann
[PATCH nf-next v4 0/3] xtables socket classid matching,
Daniel Borkmann
[PATCH 0/2] nftables: minor Kconfig fixes,
Eric Leblond
[PATCH 0/8] Netfilter/IPVS fixes for net,
Pablo Neira Ayuso
- [PATCH 5/8] ipvs: correct usage/allocation of seqadj ext in ipvs, Pablo Neira Ayuso
- [PATCH 8/8] netfilter: nf_tables: fix wrong datatype in nft_validate_data_load(), Pablo Neira Ayuso
- [PATCH 6/8] netfilter: nf_tables: fix dumping with large number of sets, Pablo Neira Ayuso
- [PATCH 7/8] netfilter: nf_tables: fix oops when updating table with user chains, Pablo Neira Ayuso
- [PATCH 2/8] netfilter: nft_exthdr: call ipv6_find_hdr() with explicitly initialized offset, Pablo Neira Ayuso
- [PATCH 4/8] netfilter: WARN about wrong usage of sequence number adjustments, Pablo Neira Ayuso
- [PATCH 1/8] netfilter: nfnetlink_log: unset nf_loggers for netns when unloading module, Pablo Neira Ayuso
- [PATCH 3/8] netfilter: nf_ct_timestamp: Fix BUG_ON after netns deletion, Pablo Neira Ayuso
- Re: [PATCH 0/8] Netfilter/IPVS fixes for net, David Miller
- <Possible follow-ups>
- [PATCH 0/8] Netfilter/IPVS fixes for net, Pablo Neira Ayuso
- [PATCH 0/8] Netfilter/IPVS fixes for net, Pablo Neira Ayuso
- [PATCH 6/8] netfilter: nft_compat: use the match->table to validate dependencies, Pablo Neira Ayuso
- [PATCH 7/8] netfilter: nf_tables: restore synchronous object release from commit/abort, Pablo Neira Ayuso
- [PATCH 3/8] ipvs: Keep skb->sk when allocating headroom on tunnel xmit, Pablo Neira Ayuso
- [PATCH 8/8] netfilter: conntrack: fix race in __nf_conntrack_confirm against get_next_corpse, Pablo Neira Ayuso
- [PATCH 5/8] netfilter: nft_compat: relax chain type validation, Pablo Neira Ayuso
- [PATCH 4/8] netfilter: nft_compat: use current net namespace, Pablo Neira Ayuso
- [PATCH 2/8] netfilter: ipset: small potential read beyond the end of buffer, Pablo Neira Ayuso
- [PATCH 1/8] netfilter: nft_masq: fix uninitialized range in nft_masq_{ipv4, ipv6}_eval, Pablo Neira Ayuso
- Re: [PATCH 0/8] Netfilter/IPVS fixes for net, David Miller
[PATCH] netfilter: nf_tables: remove nft_meta_target, Pablo Neira Ayuso
[PATCH 1/2 nft] mnl: print netlink message if if --debug=netlink in mnl_talk(),
Pablo Neira Ayuso
[PATCH] netfilter: nf_tables: fix wrong datatype in nft_validate_data_load(), Pablo Neira Ayuso
[PATCH net-next] netfilter: xtables make functions local,
Stephen Hemminger
nf_tables_api.c:nf_tables_update cause oops,
Alex Wei
[GIT PULL nf-next] IPVS Updates for v3.14,
Simon Horman
[GIT PULL nf 0/2] IPVS Fixes for v3.13,
Simon Horman
[PATCH nft] netlink: add support to set meta keys, Pablo Neira Ayuso
[libnftables PATCH v3] src: update meta expr,
Arturo Borrero Gonzalez
[PATCH nf-next] netfilter: nf_tables: dump sets in all existing families, Pablo Neira Ayuso
[nft kernel PATCH v3] netfilter: nf_tables: nft_meta module get/set ops,
Arturo Borrero Gonzalez
[PATCH nf] netfilter: nf_tables: fix dumping with large number of sets, Pablo Neira Ayuso
[xtables-addons-1.47.1] compilation failed - compat_xtables.c:633: error: too few arguments to function ipv6_find_hdr,
remoteshaman.com
[nft PATCH] files: replace interpreter during installation,
Arturo Borrero Gonzalez
[PATCH iptables-nftables v3] iptables: add libxt_cgroup frontend, Daniel Borkmann
[PATCH nf-next v3] netfilter: xtables: lightweight process control group matching,
Daniel Borkmann
[libnftables PATCH v2] examples: add nft-ruleset-get,
Arturo Borrero Gonzalez
[libnftables PATCH] build: properly handle --without-{xml,json}-parsing,
Douglas Freed
[resend patch net-next v3 0/7] fix checkpatch errors,
Chen Weilong
IPV6: kernel panic in net filter and ipv6 path while doing interface up and down continuously with ipv6 traffic,
Sasikanth babu
[patch net-next v3 0/7] fix checkpatch errors,
Chen Weilong
iptc_handle : where is header and structure info for iptc_handle ?,
hanasaki@xxxxxxxxx
[PATCH v4 0/2] Add UID/GID info to NFQUEUE,
valentina . giusti
[PATCH] nf_conntrack_timestamp: Fix BUG_ON after netns deletion,
Helmut Schaa
[PATCH v3 0/2] Add UID/GID info to NFQUEUE,
valentina . giusti
[patch net-next 0/7] fix checkpatch errors,
Chen Weilong
[PATCH net] net: nft: call ipv6_find_hdr() with explicitly initialized offset,
Daniel Borkmann
[PATCH next 1/2] net: netfilter: avoid get_random_bytes calls,
Florian Westphal
[PATCH] nf-nat: don't use per destination incrementing ports in nat random mode,
Hannes Frederic Sowa
[PATCH v2 0/2] Add UID/GID info to NFQUEUE,
valentina . giusti
[PATCH 0/2] Add UID/GID info to NFQUEUE,
valentina . giusti
xt_sslpin experimental match module for SSL/TLS pinning,
Fredburger
[PATCHv2 iptables] iptables: Add IPv4/6 IPcomp match support,
Fan Du
[PATCHv2 net-next] netfilter: add IPv4/6 IPComp extension match support,
Fan Du
[PATCH 0/1] add hash:ip,mark data type to ipset,
Vytas Dauksa
[libnftables PATCH v2] src: update meta expr, Arturo Borrero Gonzalez
[net PATCH 0/2] Fixing OOPSes in seqadj code,
Jesper Dangaard Brouer
[nftables kernel PATCH v3] netfilter: nf_tables: nft_meta module get/set ops,
Arturo Borrero Gonzalez
[PATCH] nfnetlink_log: unset nf_loggers for net namespace when unload nfnetlink_log,
Gao feng
iptc_handle : finding header and structure info, hanasaki@xxxxxxxxx
[PATCH RFC nf_conntrack_tcp] Export ip_ct_tcp_state variables to userspace,
Kristian Evensen
[PATCH -stable-3.12] netfilter: fix wrong byte order in nf_ct_seqadj_set internal information, Pablo Neira Ayuso
[PATCH 0/2] iptables: IPv4/v6 IPcomp match support,
Fan Du
[PATCH net-next 0/2] netfilter: IPv4/v6 IPcomp match support,
Fan Du
[iptables-nftables PATCH] include: Update nftables API header in sync with kernel's one,
Tomasz Bursztyka
[PATCH] netfilter: Kill unreplied conntracks by ICMP errors,
Changli Gao
[Index of Archives]
[LARTC]
[Berkeley Packet Filter]
[Bugtraq]
[Yosemite Discussion]